nsupdate/key

Alexander Ottl aottl at mpmail.net
Sat Dec 16 12:51:12 UTC 2000


I suspect that dnskeygen appended the required "." to the key name, so
the key name to be used here would be "tsig."
(Note the dot)

Alex

Kevin Darcy wrote:
> 
> I don't think this is a problem on the server. The "error reading key" me=
> ssage
> is coming from nsupdate -- it's not even talking to the server at that po=
> int.
> 
> Check to make sure that the key files are readable by whatever ID nsupdat=
> e is
> running as.
> 
> - Kevin
> 
> Andr=E9 Valentin wrote:
> 
> > Hi!
> >
> > I just figured out how to dynamically update dns entries with bind. The=
> n I
> > made a key with
> > dnskeygen -H 128 -h -n tsig
> > But if I try to use it with nsupdate -k /var/named/tsig:tsig I get the
> > following error message:
> > dst_read_key: error reading key
> > But the *.privat and *.key file exists. Did I forget anything in named.=
> conf
> > to allow to sign
> > my requests with that key?
> >
> > Ciao,
> >         Andr=E9
> 
> -
> Posted automagically by a mail2news gateway at muc.de e.V.
> Please direct questions, flames, donations, etc. to admin at newsgate.muc.de

-- 
Alexander Ottl
Media Professionals AG           Tel.: +49 (89) 51554-169
Bayerstrasse 21                  Fax : +49 (89) 51554-199
D-80335 Muenchen - Germany       http://www.media-professionals.de



More information about the bind-users mailing list